CVE-2021-38464

InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 have inadequate encryption strength, which may allow an attacker to intercept the communication and steal sensitive information or hijack the session.
References
Link Resource
https://us-cert.cisa.gov/ics/advisories/icsa-21-280-05 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:inhandnetworks:ir615_firmware:2.3.0.r4724:*:*:*:*:*:*:*
cpe:2.3:h:inhandnetworks:ir615:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:inhandnetworks:ir615_firmware:2.3.0.r4870:*:*:*:*:*:*:*
cpe:2.3:h:inhandnetworks:ir615:-:*:*:*:*:*:*:*

History

22 Oct 2021, 15:13

Type Values Removed Values Added
CPE cpe:2.3:o:inhandnetworks:ir615_firmware:2.3.0.r4724:*:*:*:*:*:*:*
cpe:2.3:o:inhandnetworks:ir615_firmware:2.3.0.r4870:*:*:*:*:*:*:*
cpe:2.3:h:inhandnetworks:ir615:-:*:*:*:*:*:*:*
References (MISC) https://us-cert.cisa.gov/ics/advisories/icsa-21-280-05 - (MISC) https://us-cert.cisa.gov/ics/advisories/icsa-21-280-05 - Third Party Advisory, US Government Resource
CVSS v2 : unknown
v3 : unknown
v2 : 5.8
v3 : 7.4

19 Oct 2021, 13:31

Type Values Removed Values Added
New CVE

Information

Published : 2021-10-19 13:15

Updated : 2024-02-04 22:08


NVD link : CVE-2021-38464

Mitre link : CVE-2021-38464

CVE.ORG link : CVE-2021-38464


JSON object : View

Products Affected

inhandnetworks

  • ir615
  • ir615_firmware
CWE
CWE-326

Inadequate Encryption Strength